openssl: security bump to version 1.0.2h
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Tue, 3 May 2016 14:39:33 +0000 (11:39 -0300)
committerPeter Korsgaard <peter@korsgaard.com>
Wed, 4 May 2016 20:44:51 +0000 (22:44 +0200)
commit2de25704771bfe34fb87a01dad3987c5c93404eb
tree483abd1dc7ed76a8e37f18de541ce6a1d7733c9f
parentf6c2e55a87e5a0032765199de434cf85a7bdb90e
openssl: security bump to version 1.0.2h

Fixes:
CVE-2016-2105 - Fix EVP_EncodeUpdate overflow
CVE-2016-2106 - Fix EVP_EncryptUpdate overflow
CVE-2016-2107 - Prevent padding oracle in AES-NI CBC MAC check
CVE-2016-2109 - Prevent ASN.1 BIO excessive memory allocation
CVE-2016-2176 - EBCDIC overread

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/openssl/openssl.hash
package/openssl/openssl.mk